[strongSwan] scepclient and cisco

Germano Veit Michel germanovmichel at aim.com
Fri Mar 30 15:42:35 CEST 2012


Hello,


I've been trying to get scepclient to work with CISCO (IOS 15) for a week, turned all debugging on and still no success.


CISCO fails with "unable to open signed data" when I request a certificate (get ca cert works).


This is what I'm doing:



ipsec scepclient --out cert=mycert.der --dn "CN=myname" -k 1024 --url http://10.1.1.2/cgi-bin/pkiclient.exe --in cacert-enc=CISCO.der --in cacert-sig=CISCO.der


The wiki documentation for scepclient is extremely poor. I could improve it with some cisco examples if I get this to work...



Are there any special options/compile options? Opinions on what could be wrong?


Thanks,

Germano Veit Michel
germanovmichel at aim.com

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20120330/4294e557/attachment.html>


More information about the Users mailing list